aegilops
|
2aff2a7385
|
Fixed code markup
|
2024-07-08 11:31:06 +01:00 |
|
aegilops
|
c003f265b0
|
Fixed missing li closing tag
|
2024-07-08 10:58:06 +01:00 |
|
aegilops
|
fc6fba8d06
|
Fixed CWE tags
|
2024-07-01 14:25:47 +01:00 |
|
aegilops
|
d1d082982a
|
More external references
|
2024-07-01 14:25:29 +01:00 |
|
aegilops
|
1ecd72727d
|
Renamed README to CUSTOMIZING, removed details from qhelp and referenced md doc instead
|
2024-06-19 17:59:43 +01:00 |
|
aegilops
|
a07639f4f6
|
Set severity to 7.0, in line with other configuration queries
|
2024-06-19 17:43:41 +01:00 |
|
aegilops
|
26f1b36736
|
Fixed formatting
|
2024-06-19 17:41:58 +01:00 |
|
aegilops
|
252c9e9416
|
Added data extension to set defaults, updated help, added README to explain customization
|
2024-06-19 17:27:17 +01:00 |
|
Paul Hodgkinson
|
3a98edb60b
|
Merge branch 'main' into aegilops/js/insecure-helmet-middleware
|
2024-06-19 12:53:32 +01:00 |
|
aegilops
|
d142f830da
|
Change note and changed name of query in .ql file
|
2024-06-19 12:04:32 +01:00 |
|
aegilops
|
8a3cec4977
|
Fix formatting for check
|
2024-06-19 11:38:20 +01:00 |
|
aegilops
|
de96d3951d
|
Renamed to helmetProperty everywhere
|
2024-06-19 10:15:06 +01:00 |
|
aegilops
|
f4691b1919
|
Changed to more-modern Dataflow libraries
|
2024-06-19 10:11:06 +01:00 |
|
aegilops
|
81ef255a87
|
Change to helmetProperty from helmetSetting variable name
|
2024-06-19 10:09:50 +01:00 |
|
aegilops
|
da9e1e61a4
|
Moved examples into separate files
|
2024-06-18 19:50:06 +01:00 |
|
github-actions[bot]
|
8a25081a0e
|
Post-release preparation for codeql-cli-2.17.5
|
2024-06-10 15:33:08 +00:00 |
|
github-actions[bot]
|
877bfa2468
|
Release preparation for version 2.17.5
|
2024-06-10 13:40:39 +00:00 |
|
aegilops
|
7ee5655f31
|
Merge branch 'aegilops/js/insecure-helmet-middleware' of https://github.com/aegilops/codeql into aegilops/js/insecure-helmet-middleware
|
2024-06-07 15:50:15 +01:00 |
|
aegilops
|
975811ae59
|
Change layout of qhelp example code
|
2024-06-07 15:50:06 +01:00 |
|
Paul Hodgkinson
|
43a140e62c
|
Merge branch 'main' into aegilops/js/insecure-helmet-middleware
|
2024-06-07 15:46:18 +01:00 |
|
aegilops
|
7136763c37
|
Formatting
|
2024-06-07 15:36:39 +01:00 |
|
aegilops
|
465d64a810
|
Removed br tags
|
2024-06-07 15:34:45 +01:00 |
|
aegilops
|
29322f5ff0
|
Merge branch 'aegilops/js/insecure-helmet-middleware' of https://github.com/aegilops/codeql into aegilops/js/insecure-helmet-middleware
|
2024-06-07 15:32:23 +01:00 |
|
aegilops
|
f5d465f08a
|
Added data extension to allow setting extra required Helmet features
|
2024-06-07 15:32:11 +01:00 |
|
github-actions[bot]
|
906b65d09c
|
Post-release preparation for codeql-cli-2.17.4
|
2024-05-28 18:02:25 +00:00 |
|
github-actions[bot]
|
33b4ae8bbb
|
Release preparation for version 2.17.4
|
2024-05-28 15:44:32 +00:00 |
|
Erik Krogh Kristensen
|
c743abad54
|
Merge pull request #14294 from am0o0/amammad-js-CodeInjection_execa
JS: provide command execution sinks for execa package
|
2024-05-24 09:20:19 +02:00 |
|
Dave Bartolomeo
|
613ccaac1d
|
Add change note to all v1.0.0 packs
|
2024-05-23 13:01:22 -04:00 |
|
Dave Bartolomeo
|
ffe4c8c87b
|
Update all pack versions to 1.0.0
|
2024-05-22 13:39:08 -04:00 |
|
Paul Hodgkinson
|
65dfd4c860
|
Merge branch 'main' into aegilops/js/insecure-helmet-middleware
|
2024-05-21 14:46:49 +01:00 |
|
aegilops
|
68e21a594a
|
Fixed query help formatting issues
|
2024-05-21 14:35:18 +01:00 |
|
aegilops
|
83037b1195
|
Adjust structure to avoid warnings about message
|
2024-05-21 13:51:13 +01:00 |
|
erik-krogh
|
c166cb406a
|
Merge branch 'main' into amammad-js-CodeInjection_execa
|
2024-05-21 08:48:12 +02:00 |
|
aegilops
|
3a885eaf9f
|
Insecure Helmet middle configuration - frameguard or CSP to 'false'
|
2024-05-20 11:58:55 +01:00 |
|
Asger F
|
499c4df79b
|
Merge pull request #13554 from am0o0/amammad-js-bombs
JS: Decompression Bombs
|
2024-05-16 13:25:41 +02:00 |
|
erik-krogh
|
56dff8540f
|
add an example of how to get a floating point value between 0 and 1
|
2024-05-16 11:15:07 +02:00 |
|
erik-krogh
|
066f3b61a2
|
RandomSource is deprecated, it's crypto now
|
2024-05-16 11:14:50 +02:00 |
|
github-actions[bot]
|
32e8b5c667
|
Post-release preparation for codeql-cli-2.17.3
|
2024-05-14 21:14:08 +00:00 |
|
github-actions[bot]
|
100166fa53
|
Release preparation for version 2.17.3
|
2024-05-14 19:23:18 +00:00 |
|
erik-krogh
|
39a8b49222
|
add qhelp recommendation that you can use an obvious placeholder value
|
2024-05-03 19:37:31 +02:00 |
|
erik-krogh
|
ff85db36e2
|
exclude credentials as kind key from hardcoded-credentials when the key looks like a dummy password
|
2024-05-03 13:58:11 +02:00 |
|
github-actions[bot]
|
99928b82ed
|
Post-release preparation for codeql-cli-2.17.2
|
2024-04-30 12:15:35 +00:00 |
|
github-actions[bot]
|
5228d94d42
|
Release preparation for version 2.17.2
|
2024-04-30 10:25:51 +00:00 |
|
erik-krogh
|
baa31e1469
|
delete outdated deprecations
|
2024-04-25 22:19:28 +02:00 |
|
Alexander Eyers-Taylor
|
da3fa22cbd
|
Merge pull request #16228 from github/post-release-prep/codeql-cli-2.17.1
Post-release preparation for codeql-cli-2.17.1
|
2024-04-17 11:24:34 +01:00 |
|
Asger F
|
ed80e4e284
|
JS: Change note
|
2024-04-17 08:41:27 +02:00 |
|
github-actions[bot]
|
622e176a16
|
Post-release preparation for codeql-cli-2.17.1
|
2024-04-16 14:21:32 +00:00 |
|
github-actions[bot]
|
9bfe4ea90a
|
Release preparation for version 2.17.1
|
2024-04-15 17:34:47 +00:00 |
|
Asger F
|
f08e8b1d5e
|
Merge pull request #16136 from asgerf/js/instance-to-subclasses
JS: Make getInstance() propagate to subclasses
|
2024-04-08 14:37:42 +02:00 |
|
Asger F
|
ad9838d0fe
|
JS: Add change note
|
2024-04-08 10:02:28 +02:00 |
|